Imperva Threat Research has revealed the 8220 gang’s use of multiple vulnerabilities, including the Oracle WebLogic Server flaw, to spread cryptojacking malware in the Americas, Europe, and Africa. Known for mass malware deployment, the gang primarily targets Windows and Linux web servers. Despite using simple exploits and unsophisticated methods, the group continually evolves its strategies to avoid detection. The gang mainly targets organisations in the United States, South Africa, Spain, Columbia, and Mexico.

Google dismantles SlopAds network behind 224 malware apps generating billions of fake ad clicks – TechRadar
Google dismantles SlopAds network behind 224 malware apps generating billions of fake ad clicks TechRadar